Description
A local attacker who is a member of the 'superadmin' group can reset the password of any LARM user on a LOYTEC L-IP BACnet/IP router, including the 'larmapp' service account, via the 'set-passwd' subcommand of the '/usr/bin/ltsudo' utility. This bypasses the authorization checks that should limit password resets to the account's own owner.
This plugin only works with Tenable.ot.
Please visit https://www.tenable.com/products/tenable-ot for more information.
Plugin Details
Supported Sensors: Tenable OT Security
Risk Information